RSS   Vulnerabilities for 'Webfoliocms'   RSS

2012-09-17
 
CVE-2012-1899

CWE-79
 

 
Multiple cross-site scripting (XSS) vulnerabilities in webfolio/admin/users/edit in Webfolio CMS 1.1.4 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) First name, (2) Last name or (3) Email (required) fields.

 

 >>> Vendor: Nikola posa 14 Products
Webfoliocms1.0.2
Webfoliocms1.0.3
Webfoliocms1.0.4
Webfoliocms1.0.5
Webfoliocms1.0.6
Webfoliocms1.0.7
Webfoliocms1.0.8
Webfoliocms1.0.9
Webfoliocms1.1.0
Webfoliocms1.1.1
Webfoliocms1.1.2
Webfoliocms1.1.3
Webfoliocms1.1.4
Webfoliocms


Copyright 2024, cxsecurity.com

 

Back to Top